David A. Wheeler’s Page on Fully Countering Trusting Trust through Diverse Double-Compiling (DDC) - Countering Trojan Horse attacks on Compilers<p><a href="http://www.dwheeler.com/trusting-trust/" rel="nofollow">http://www.dwheeler.com/trusting-trust/</a><p>First step:<p><a href="https://wiki.debian.org/ReproducibleBuilds" rel="nofollow">https://wiki.debian.org/ReproducibleBuilds</a>
Thompson's conclusion that compromising computer systems is no more amazing than driving drunk surprises me. I must have missed that in prior readings.
Looks like the last significant discussion was 3 years ago, so have at it.<p><a href="https://hn.algolia.com/?q=reflections+on+trusting+trust#!/story/forever/0/reflections%20on%20trusting%20trust" rel="nofollow">https://hn.algolia.com/?q=reflections+on+trusting+trust#!/st...</a>